Skill security
The Security tab describes the security review planned for skills. It does
not run a scan, report findings, or block a release yet. Treat this page as a
product preview, not as evidence that a skill is safe.
The planned scores, findings, trend, and release gate are illustrative. They
are not the result of a live scan.
What the preview covers
- Security posture: A risk score and a recommendation such as Safe, Caution,
or Do not install.
- Scan coverage: The patterns, categories, and analyzers included in the
scan.
- Findings: Severity, file location, confidence, and suggested remediation.
- Risk trend: How the score changed across versions or scans.
- Release gate: Whether a finding would be advisory or block promotion.
What to do today
Review the package in Source before you use or publish it. Check every
supporting file, especially scripts and templates, and use the selected
version’s source rather than a name alone. Follow your organization’s review
process until the Security tab can provide verified scan results.